Do you have the User/Admin Guide for this product? Check in there if RADIUS/TACACS is supported for login. It starts by enabling RADIUS or TACACS on the device, and the user manual should cover RADIUS / TACACS attributes if supported. You may not need a RADIUS dictionary as many devices will use the standard IETF attributes. You could create a service matching this device's authentication traffic, from there find out the device is sending. You can even do a packet capture on ClearPass with the 'Collect Logs' feature.
------------------------------
Herman Robers
------------------------
If you have urgent issues, always contact your Aruba partner, distributor, or Aruba TAC Support. Check
https://www.arubanetworks.com/support-services/contact-support/ for how to contact Aruba TAC. Any opinions expressed here are solely my own and not necessarily that of Hewlett Packard Enterprise or Aruba Networks.
In case your problem is solved, please invest the time to post a follow-up with the information on how you solved it. Others can benefit from that.
------------------------------